Security Review

Review exploit paths, secret exposure, unsafe permissions, injection, authentication and authorization, supply-chain risk, and data leakage.

jsuvic 512e1e6 967 B Updated

File contents

Security Review

Focus

  • Exploit paths and trust-boundary violations.
  • Secret exposure, unsafe permissions, and data leakage.
  • Injection and authentication or authorization failures.
  • Supply-chain and dependency risk introduced by the change.

Output Discipline

  • Lead with prioritized findings and concrete evidence.
  • Cite the affected file, symbol, or contract when available.
  • Distinguish confirmed defects from risks or missing evidence.
  • Do not edit or rewrite the change unless the user asks.

Safety

  • Review only; do not run scanners, install tools, or broaden permissions.
  • Do not upload source code or read or print secrets.
  • Do not contact production systems or external services.

jsuvic/agent-profile/tree/main/fixtures/advanced-review-enabled/expected/.agents/skills/security-review commit 512e1e6b47

Frequently asked questions

npx skillmds@latest add jsuvic/security-review